CVE Database

117989+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2024-45787
6.5 MEDIUM

This vulnerability exists in Reedos aiM-Star version 2.0.1 due to transmission of sensitive information in plain text in certain API endpoints. An authenticated remote attacker …

Sep 11, 2024
CVE-2024-45786
6.5 MEDIUM

This vulnerability exists in Reedos aiM-Star version 2.0.1 due to improper access controls on its certain API endpoints. An authenticated remote attacker could exploit this …

Sep 11, 2024
CVE-2024-8096
6.5 MEDIUM

When curl is told to use the Certificate Status Request TLS extension, often referred to as OCSP stapling, to verify that the server certificate is …

Sep 11, 2024
CVE-2024-45327
7.5 HIGH

An improper authorization vulnerability [CWE-285] in FortiSOAR version 7.4.0 through 7.4.3, 7.3.0 through 7.3.2, 7.2.0 through 7.2.2, 7.0.0 through 7.0.3 change password endpoint may allow …

Sep 11, 2024
CVE-2024-8277
9.8 CRITICAL

The WooCommerce Photo Reviews Premium plugin for WordPress is vulnerable to authentication bypass in all versions up to, and including, 1.3.13.2. This is due to …

Sep 11, 2024
CVE-2019-25212
4.9 MEDIUM

The video carousel slider with lightbox plugin for WordPress is vulnerable to SQL Injection via the 'id' parameter in all versions up to, and including, …

Sep 11, 2024
CVE-2024-8045
6.4 MEDIUM

The Advanced WordPress Backgrounds plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘imageTag’ parameter in all versions up to, and including, 1.12.3 …

Sep 11, 2024
CVE-2024-7626
8.1 HIGH

The WP Delicious – Recipe Plugin for Food Bloggers (formerly Delicious Recipes) plugin for WordPress is vulnerable to arbitrary file movement and reading due to …

Sep 11, 2024
CVE-2024-8440
6.4 MEDIUM

The Essential Addons for Elementor – Best Elementor Templates, Widgets, Kits & WooCommerce Builders plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the …

Sep 11, 2024
CVE-2024-7716
4.8 MEDIUM

The Logo Slider WordPress plugin before 3.6.9 does not sanitise and escape some of its settings, which could allow high privilege users such as admin …

Sep 11, 2024
CVE-2024-3899
4.8 MEDIUM

The Gallery Plugin for WordPress WordPress plugin before 1.8.15 does not sanitise and escape some of its image settings, which could allow users with post-writing …

Sep 11, 2024
CVE-2024-7727
5.3 MEDIUM

The HTML5 Video Player – mp4 Video Player Plugin and Block plugin for WordPress is vulnerable to unauthorized access of data due to a missing …

Sep 11, 2024
CVE-2024-7721
4.3 MEDIUM

The HTML5 Video Player – mp4 Video Player Plugin and Block plugin for WordPress is vulnerable to unauthorized modification of data due to a missing …

Sep 11, 2024
CVE-2024-43690
8.0 HIGH

Inclusion of Functionality from Untrusted Control Sphere(CWE-829) in the Command Centre Server and Workstations may allow an attacker to perform Remote Code Execution (RCE). This …

Sep 11, 2024
CVE-2024-21529
8.2 HIGH

Versions of the package dset before 3.1.4 are vulnerable to Prototype Pollution via the dset function due improper user input sanitization. This vulnerability allows the …

Sep 11, 2024
CVE-2024-1656
2.6 LOW

Affected versions of Octopus Server had a weak content security policy.

Sep 11, 2024
CVE-2024-8253
8.8 HIGH

The Post Grid and Gutenberg Blocks plugin for WordPress is vulnerable to privilege escalation in all versions 2.2.87 to 2.2.90. This is due to the …

Sep 11, 2024
CVE-2024-39808
4.6 MEDIUM

Incorrect Calculation of Buffer Size (CWE-131) in the Controller 6000 and Controller 7000 OSDP message handling, allows an attacker with physical access to Controller wiring …

Sep 11, 2024
CVE-2024-24972
6.5 MEDIUM

Buffer Copy without Checking Size of Input (CWE-120) in the Controller 6000 and Controller 7000 diagnostic web interface allows an authorised and authenticated operator to …

Sep 11, 2024
CVE-2024-23906
6.1 MEDIUM

Improper Neutralization of Input During Web Page Generation (CWE-79) in the Controller 6000 and Controller 7000 diagnostic webpage allows an attacker to modify Controller configuration …

Sep 11, 2024
CVE-2024-40662
7.8 HIGH

In scheme of Uri.java, there is a possible way to craft a malformed Uri object due to improper input validation. This could lead to local …

Sep 11, 2024
CVE-2024-40659
5.5 MEDIUM

In getRegistration of RemoteProvisioningService.java, there is a possible way to permanently disable the AndroidKeyStore key generation feature by updating the attestation keys of all installed …

Sep 11, 2024
CVE-2024-40658
7.8 HIGH

In getConfig of SoftVideoDecoderOMXComponent.cpp, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local escalation of …

Sep 11, 2024
CVE-2024-40657
7.8 HIGH

In addPreferencesForType of AccountTypePreferenceLoader.java, there is a possible way to disable apps for other users due to a confused deputy. This could lead to local …

Sep 11, 2024
CVE-2024-40656
5.5 MEDIUM

In handleCreateConferenceComplete of ConnectionServiceWrapper.java, there is a possible way to reveal images across users due to a confused deputy. This could lead to local information …

Sep 11, 2024
CVE-2024-40655
7.8 HIGH

In bindAndGetCallIdentification of CallScreeningServiceHelper.java, there is a possible way to maintain a while-in-use permission in the background due to a permissions bypass. This could lead …

Sep 11, 2024
CVE-2024-40654
7.8 HIGH

In multiple locations, there is a possible permission bypass due to a confused deputy. This could lead to local escalation of privilege with no additional …

Sep 11, 2024
CVE-2024-40652
7.8 HIGH

In onCreate of SettingsHomepageActivity.java, there is a possible way to access the Settings app while the device is provisioning due to a missing permission check. …

Sep 11, 2024
CVE-2024-40650
7.8 HIGH

In wifi_item_edit_content of styles.xml , there is a possible FRP bypass due to Missing check for FRP state. This could lead to local escalation of …

Sep 11, 2024
CVE-2024-31336
7.8 HIGH

In PVRSRVBridgeRGXKickTA3D2 of server_rgxta3d_bridge.c, there is a possible arbitrary code execution due to improper input validation. This could lead to local escalation of privilege in …

Sep 11, 2024
CVE-2024-23716
7.0 HIGH

In DevmemIntPFNotify of devicemem_server.c, there is a possible use-after-free due to a race condition. This could lead to local escalation of privilege in the kernel …

Sep 11, 2024
CVE-2024-45597
5.3 MEDIUM

Pluto is a superset of Lua 5.4 with a focus on general-purpose programming. Scripts passing user-controlled values to http.request header values are affected. An attacker …

Sep 10, 2024
CVE-2024-8441
6.7 MEDIUM

An uncontrolled search path in the agent of Ivanti EPM before 2022 SU6, or the 2024 September update allows a local authenticated attacker with admin …

Sep 10, 2024
CVE-2024-8322
4.3 MEDIUM

Weak authentication in Patch Management of Ivanti EPM before 2022 SU6, or the 2024 September update allows a remote authenticated attacker to access restricted functionality.

Sep 10, 2024
CVE-2024-8321
5.8 MEDIUM

Missing authentication in Network Isolation of Ivanti EPM before 2022 SU6, or the 2024 September update allows a remote unauthenticated attacker to isolate managed devices …

Sep 10, 2024
CVE-2024-8320
5.3 MEDIUM

Missing authentication in Network Isolation of Ivanti EPM before 2022 SU6, or the 2024 September update allows a remote unauthenticated attacker to spoof Network Isolation …

Sep 10, 2024
CVE-2024-8191
7.8 HIGH

SQL injection in the management console of Ivanti EPM before 2022 SU6, or the 2024 September update allows a remote unauthenticated attacker to achieve remote …

Sep 10, 2024
CVE-2024-8190
7.2 HIGH KEV

An OS command injection vulnerability in Ivanti Cloud Services Appliance versions 4.6 Patch 518 and before allows a remote authenticated attacker to obtain remote code …

Sep 10, 2024
CVE-2024-8012
7.8 HIGH

An authentication bypass weakness in the message broker service of Ivanti Workspace Control before version 2025.2 (10.19.0.0) allows a local authenticated attacker to escalate their …

Sep 10, 2024
CVE-2024-44107
8.8 HIGH

DLL hijacking in the management console of Ivanti Workspace Control before version 2025.2 (10.19.0.0) allows a local authenticated attacker to escalate their privileges and achieve …

Sep 10, 2024
CVE-2024-44106
8.8 HIGH

Insufficient server-side controls in the management console of Ivanti Workspace Control before version 2025.2 (10.19.0.0) allows a local authenticated attacker to escalate their privileges.

Sep 10, 2024
CVE-2024-44105
8.2 HIGH

Cleartext transmission of sensitive information in the management console of Ivanti Workspace Control before version 2025.2 (10.19.0.0) allows a local authenticated attacker to obtain OS …

Sep 10, 2024
CVE-2024-44104
8.8 HIGH

An incorrectly implemented authentication scheme that is subjected to a spoofing attack in the management console of Ivanti Workspace Control before version 2025.2 (10.19.0.0) allows …

Sep 10, 2024
CVE-2024-44103
8.8 HIGH

DLL hijacking in the management console of Ivanti Workspace Control before version 2025.2 (10.19.0.0) allows a local authenticated attacker to escalate their privileges.

Sep 10, 2024
CVE-2024-8655
5.3 MEDIUM

A vulnerability was found in Mercury MNVR816 up to 2.0.1.0.5. It has been classified as problematic. This affects an unknown part of the file /web-static/. …

Sep 10, 2024
CVE-2024-8504
8.8 HIGH

An attacker with authenticated access to VICIdial as an "agent" can execute arbitrary shell commands as the "root" user. This attack can be chained with …

Sep 10, 2024
CVE-2024-8503
9.8 CRITICAL

An unauthenticated attacker can leverage a time-based SQL injection vulnerability in VICIdial to enumerate database records. By default, VICIdial stores plaintext credentials within the database.

Sep 10, 2024
CVE-2024-8232
7.5 HIGH

SpiderControl SCADA Web Server has a vulnerability that could allow an attacker to upload specially crafted malicious files without authentication.

Sep 10, 2024
CVE-2024-43040
9.1 CRITICAL

Renwoxing Enterprise Intelligent Management System before v3.0 was discovered to contain a SQL injection vulnerability via the parid parameter at /fx/baseinfo/SearchInfo.

Sep 10, 2024
CVE-2024-45596
7.4 HIGH

Directus is a real-time API and App dashboard for managing SQL database content. An unauthenticated user can access credentials of last authenticated user via OpenID …

Sep 10, 2024

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.